Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-59 (在文件访问前对链接解析不恰当(链接跟随)) — Vulnerability Class 418

418 vulnerabilities classified as CWE-59 (在文件访问前对链接解析不恰当(链接跟随)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-32547 apport read_file() function could follow maliciously constructed symbolic links — apport 7.3 High2021-06-12
CVE-2021-31997 python-postorius: postorius-permissions.sh used during %post allows local privilege escalation from postorius user to root — Leap 15.2 6.8 Medium2021-06-10
CVE-2021-23892 Mcafee McAfee Security 后置链接漏洞 — McAfee Endpoint Security (ENS) for Linux 8.2 High2021-05-12
CVE-2021-23872 Privilege Escalation vulnerability in McAfee Total Protection (MTP) — McAfee Total Protection (MTP) 7.8 High2021-05-12
CVE-2021-30356 Check Point Identity Agent 后置链接漏洞 — Check Point Identity Agent 8.1 -2021-04-22
CVE-2021-27241 Avast Premium Security 后置链接漏洞 — Premium Security 6.1 -2021-03-29
CVE-2021-20197 GNU Binutils 后置链接漏洞 — binutils 6.7 -2021-03-26
CVE-2020-7346 Privilege escalation in McAfee DLP Endpoint for Windows — McAfee Data Loss Prevention (DLP) Endpoint for Windows 7.8 High2021-03-23
CVE-2021-21300 malicious repositories can execute remote code while cloning — git 8.0 High2021-03-09
CVE-2021-23873 McAfee Total Protection (MTP) privilege escalation vulnerability — McAfee Total Protection (MTP) 7.8 High2021-02-10
CVE-2020-26277 Arbitrary read/write in DBdeployer — dbdeployer 6.1 Medium2020-12-21
CVE-2020-28935 Local symlink attack in Unbound and NSD — Unbound 7.8 -2020-12-07
CVE-2020-6015 Check Point Endpoint Security 后置链接漏洞 — Check Point Endpoint Security for Windows 5.5 -2020-11-05
CVE-2014-1420 Insecure temp file usage in Ubuntu UI toolkit — ubuntu-ui-toolkit 3.8 Low2020-09-10
CVE-2020-7325 Privilege Escalation vulnerability in MVISION Endpoint — MVISION Endpoint 5.5 Medium2020-09-09
CVE-2020-7319 Improper Access Control Vulnerability in ENS for Windows — Endpoint Security for Windows 8.8 High2020-09-09
CVE-2020-14367 chrony 后置链接漏洞 — Chrony 6.0 -2020-08-24
CVE-2020-6012 Check Point Software Technologies ZoneAlarm Anti-Ransomware 后置链接漏洞 — ZoneAlarm Anti-Ransomware 7.0 -2020-08-04
CVE-2020-3437 Cisco SD-WAN vManage Software Information Disclosure Vulnerability — Cisco SD-WAN vManage 6.5 -2020-07-16
CVE-2020-7282 Privilege Escalation vulnerability in McAfee Total Protection (MTP) — McAfee Total Protection (MTP) 7.5 High2020-07-03
CVE-2020-13095 Objective Development Software Little Snitch 后置链接漏洞 — Little Snitch 8.8 -2020-06-30
CVE-2020-2026 Kata Containers - Guests can trick the kata-runtime into mounting the container image on any host path — Kata Containers 7.8 High2020-06-10
CVE-2020-8103 Link Resolution Privilege Escalation Vulnerability in Bitdefender Antivirus Free (VA-8604) — Bitdefender Antivirus Free 7.2 High2020-06-05
CVE-2020-3237 Cisco IOx Application Framework Arbitrary File Overwrite Vulnerability — Cisco IOx 6.0 -2020-06-03
CVE-2020-3223 Cisco IOS XE Software Web UI Arbitrary File Read Vulnerability — Cisco IOS XE Software 16.9.4 4.9 -2020-06-03
CVE-2020-2024 Kata Containers - Guests can trick the kata-runtime into unmounting any mount point on the host — Kata Containers 6.5 Medium2020-05-19
CVE-2020-8099 Link Resolution Privilege Escalation Vulnerability in Bitdefender Antivirus Free (VA-8387) — Antivirus Free 7.1 High2020-04-21
CVE-2020-7250 ENS symbolic link log file manipulation vulnerability — McAfee Endpoint Security (ENS) 8.2 High2020-04-15
CVE-2020-5738 Grandstream GXP1600 后置链接漏洞 — Grandstream GXP1600 Series 8.8 -2020-04-14
CVE-2020-8015 Local privilege escalation in exim package from user mail to root — Factory 8.4 High2020-04-02

Vulnerabilities classified as CWE-59 (在文件访问前对链接解析不恰当(链接跟随)) represent 418 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.